Intelligence View
⚡ tsecurity.de Intelligence
CVE-2022-3515 | GnuPG libksba File Parser stack-based overflow (ZDI-22-1465 / Nessus ID 211112)
A vulnerability was found in GnuPG libksba. It has been declared as critical. This vulnerability affects unknown code of the component File Parser. The…
A vulnerability was found in GnuPG libksba. It has been declared as critical. This vulnerability affects unknown code of the component File Parser. The manipulation leads to stack-based buffer overflow.
This vulnerability was named CVE-2022-3515. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
This vulnerability was named CVE-2022-3515. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
2. Cyber Threat Intelligence & Forensik
IoC Intelligence (1 Indikatoren)
CVE-2022-3515
CTI Threat Relationship Graph2 Knoten / 1 Relationen
Exploit & Remediation Lifecycle Timeline
CVE-2022-3515Entdeckung & Meldung
Schwachstelle identifiziert & registriert
Sicherheits-Advisory
Offizielle Warnung & CVE-Zuweisung
Exploit / PoC
Bislang kein öffentlicher Exploit
In-the-Wild Ausnutzung
Keine Massenausnutzung gemeldet
Patch & Schutzmaßnahmen
Upstream-Patch-Referenz vorhanden (Commit-/Advisory-Link)
Exploit Weaponization & Public PoC Radar
HIGH EXPLOITABLE · Index 60/100Exploit-DB
Kein EDB-EintragInteraktion
0-ClickAuthentifizierung
Nicht erforderlich3. Compliance, SLA & Vendor Adherence
CVSS 9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Impact: 5.87 | Exploitability: 3.89
AVN
Netzwerk (Remote)
Aus der Ferne über das Internet ohne Vorbedingungen exploitbar.
ACL
Niedrig (Low)
Wiederholbar und deterministisch ohne spezielle Race Conditions ausnutzbar.
PRN
Keine (Unauthenticated)
Vollständig unauthentifiziert ohne Benutzerkonto exploitbar.
UIN
Keine (Zero-Click)
Autonom ohne menschliches Zutun ausführbar (Zero-Click Exploitation).
SU
Unverändert (Scope Unchanged)
Auswirkungen verbleiben isoliert in der angreifbaren Anwendungskomponente.
CH
Hoch (Totaler Abfluss)
Vollständiger Zugriff auf alle sensiblen Datenbank- und Speicherinhalte.
IH
Hoch (Volle Manipulation)
Vollständige Modifikation von Dateien, Parametern oder Ausführung von Code.
AH
Hoch (Totaler Ausfall / DoS)
Dienst oder Server wird komplett unbrauchbar (Denial of Service).
BSI-Warnung (Deutschland)CVE-2022-3515
Dell ECS: Mehrere Schwachstellen04.04.2024Red Hat OpenShift: Mehrere Schwachstellen22.06.2023Xerox FreeFlow Print Server für Solaris: Mehrere Schwachstellen12.06.2023CISA-SSVC-Triage (vulnrichment)CVE-2022-3515
Exploitation: poc (PoC verfügbar)Automatable: yes (Automatisierbar)Technical Impact: total (Vollständig)
Quelle: CISA-ADP vulnrichment · Stand 2025-04-08T15:48:11.884238Z · CISA Coordinator
Advisory Radar
Offizielles Hersteller-Update verfügbar
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller hat ein verifiziertes Patch-Release herausgegeben. Sofortiges Rollout auf Test- und Produktivsystemen empfohlen.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Red Hat Security Bulletin Verifiziertredhat.com
-
Web Referencewww.gnupg.org
-
Web Referencedev.gnupg.org
-
Red Hat Security Bulletin Verifiziertredhat.com
-
Web Referencesecurity.netapp.com